Skip to Content.
Sympa Menu

mace-opensaml-users - Re: Re: [OpenSAML] Unmarshalling problem - losing the inner ApplyType of a ConditionType

Subject: OpenSAML user discussion

List archive

Re: Re: [OpenSAML] Unmarshalling problem - losing the inner ApplyType of a ConditionType


Chronological Thread 
  • From:
  • To:
  • Subject: Re: Re: [OpenSAML] Unmarshalling problem - losing the inner ApplyType of a ConditionType
  • Date: Thu, 19 Jun 2008 07:06:55 -0400 (EDT)


Hi Hakon, the marshalled policy is:

<xacml-saml:XACMLPolicyStatement
xmlns:xacml-saml="urn:oasis:names:tc:xacml:2.0:profile:saml2.0:v2:schema:assertion"><xacml:Policy

xmlns:xacml="urn:oasis:names:tc:xacml:2.0:policy:schema:os"><xacml:Description>Test
SAML2 policy
creation</xacml:Description><xacml:Target><xacml:Subjects/><xacml:Actions/><xacml:Resources><xacml:Resource><xacml:ResourceMatch

MatchId="urn:oasis:names:tc:xacml:1.0:function:string-equal"><xacml:AttributeValue>namespaces/bbc.co.uk</xacml:AttributeValue><xacml:ResourceAttributeDesignator
AttributeId="urn:oasis:names:tc:xacml:1.0:resource:resource-id"
DataType="http://www.eoveri.com/2008/machine"; MustBePresent="false"
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance";
xsi:type="xacml:AttributeDesignatorType"/></xacml:ResourceMatch></xacml:Resource></xacml:Resources></xacml:Target><xacml:Rule

Effect="Permit"><xacml:Description/><xacml:Target><xacml:Subjects/><xacml:Actions/><xacml:Resources><xacml:Resource><xacml:ResourceMatch
MatchId="urn:oasis:name

s:tc:xacml:1.0:function:string-equal"><xacml:AttributeValue>namespaces/bbc.co.uk</xacml:AttributeValue><xacml:ResourceAttributeDesignator
AttributeId="urn:oasis:names:tc:xacml:1.0:resource:resource-id"
DataType="http://www.eoveri.com/2008/machine"; MustBePresent="false"
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance";
xsi:type="xacml:AttributeDesignatorType"/></xacml:ResourceMatch></xacml:Resource></xacml:Resources></xacml:Target><xacml:Condition><xacml:Apply
FunctionId="urn:oasis:names:tc:xacml:1.0:function:string-equal"><xacml:Apply
FunctionId="urn:oasis:names:tc:xacml:1.0:function:string-one-and-only"><xacml:SubjectAttributeDesignator
AttributeId="group" DataType="http://www.w3.org/2001/XMLSchema#string";
MustBePresent="false" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance";
xsi:type="xacml:AttributeDesignatorType"/></xacml:Apply></xacml:Apply></xacml:Condition></xacml:Rule><xacml:Obligations/></xacml:Policy></xacml-saml:XACMLPolicyStatement>

Let me know if you need anything else,

Thanks
Karen



Archive powered by MHonArc 2.6.16.

Top of Page